7.5
CWE
NVD-CWE-Other
Advisory Published
Updated

CVE-2005-2105

First published: Fri Jul 01 2005(Updated: )

Cisco IOS 12.2T through 12.4 allows remote attackers to bypass Authentication, Authorization, and Accounting (AAA) RADIUS authentication, if the fallback method is set to none, via a long username.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Puppet Cisco IOS=12.2\(2\)xr
Puppet Cisco IOS=12.2\(4\)xr
Puppet Cisco IOS=12.2t
Puppet Cisco IOS=12.2xb
Puppet Cisco IOS=12.2xc
Puppet Cisco IOS=12.2xd
Puppet Cisco IOS=12.2xe
Puppet Cisco IOS=12.2xf
Puppet Cisco IOS=12.2xg
Puppet Cisco IOS=12.2xh
Puppet Cisco IOS=12.2xi
Puppet Cisco IOS=12.2xj
Puppet Cisco IOS=12.2xk
Puppet Cisco IOS=12.2xl
Puppet Cisco IOS=12.2xm
Puppet Cisco IOS=12.2xq
Puppet Cisco IOS=12.2xr
Puppet Cisco IOS=12.2xt
Puppet Cisco IOS=12.2xw
Puppet Cisco IOS=12.2ya
Puppet Cisco IOS=12.2yb
Puppet Cisco IOS=12.2yc
Puppet Cisco IOS=12.2yd
Puppet Cisco IOS=12.2yf
Puppet Cisco IOS=12.2yg
Puppet Cisco IOS=12.2yh
Puppet Cisco IOS=12.2yj
Puppet Cisco IOS=12.2yl
Puppet Cisco IOS=12.2ym
Puppet Cisco IOS=12.2yn
Puppet Cisco IOS=12.2yp
Puppet Cisco IOS=12.2yq
Puppet Cisco IOS=12.2yr
Puppet Cisco IOS=12.2yt
Puppet Cisco IOS=12.2yu
Puppet Cisco IOS=12.2yv
Puppet Cisco IOS=12.2yw
Puppet Cisco IOS=12.2yy
Puppet Cisco IOS=12.2zb
Puppet Cisco IOS=12.2zc
Puppet Cisco IOS=12.2zd
Puppet Cisco IOS=12.2ze
Puppet Cisco IOS=12.2zf
Puppet Cisco IOS=12.2zg
Puppet Cisco IOS=12.2zh
Puppet Cisco IOS=12.2zj
Puppet Cisco IOS=12.2zl
Puppet Cisco IOS=12.2zn
Puppet Cisco IOS=12.2zo
Puppet Cisco IOS=12.2zp
Puppet Cisco IOS=12.3b
Puppet Cisco IOS=12.3bc
Puppet Cisco IOS=12.3bw
Puppet Cisco IOS=12.3ja
Puppet Cisco IOS=12.3t
Puppet Cisco IOS=12.3xa
Puppet Cisco IOS=12.3xb
Puppet Cisco IOS=12.3xc
Puppet Cisco IOS=12.3xd
Puppet Cisco IOS=12.3xe
Puppet Cisco IOS=12.3xf
Puppet Cisco IOS=12.3xg
Puppet Cisco IOS=12.3xh
Puppet Cisco IOS=12.3xi
Puppet Cisco IOS=12.3xj
Puppet Cisco IOS=12.3xk
Puppet Cisco IOS=12.3xl
Puppet Cisco IOS=12.3xm
Puppet Cisco IOS=12.3xn
Puppet Cisco IOS=12.3xq
Puppet Cisco IOS=12.3xr
Puppet Cisco IOS=12.3xs
Puppet Cisco IOS=12.3xt
Puppet Cisco IOS=12.3xu
Puppet Cisco IOS=12.3xw
Puppet Cisco IOS=12.3xx
Puppet Cisco IOS=12.3xy
Puppet Cisco IOS=12.3ya
Puppet Cisco IOS=12.3yb
Puppet Cisco IOS=12.3yd
Puppet Cisco IOS=12.3yf
Puppet Cisco IOS=12.3yg
Puppet Cisco IOS=12.3yh
Puppet Cisco IOS=12.3yi
Puppet Cisco IOS=12.3yj
Puppet Cisco IOS=12.3yk
Puppet Cisco IOS=12.3yl
Puppet Cisco IOS=12.3yn
Puppet Cisco IOS=12.3yq
Puppet Cisco IOS=12.3yr
Puppet Cisco IOS=12.3ys
Puppet Cisco IOS=12.4

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2005-2105?

    CVE-2005-2105 is classified as a medium severity vulnerability as it allows attackers to bypass critical authentication mechanisms.

  • How do I fix CVE-2005-2105?

    To remediate CVE-2005-2105, ensure that fallback RADIUS authentication settings are appropriately configured and not set to 'none'.

  • Which versions of Cisco IOS are affected by CVE-2005-2105?

    CVE-2005-2105 affects Cisco IOS versions 12.2T through 12.4.

  • Can CVE-2005-2105 be exploited remotely?

    Yes, CVE-2005-2105 can be exploited remotely by attackers to bypass authentication.

  • What kind of attacks are possible due to CVE-2005-2105?

    Attackers can gain unauthorized access to networks by exploiting CVE-2005-2105, leading to potential data breaches and security incidents.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203